Credit Card Storage Policy
Purpose This policy has been prepared to ensure the secure storage of users’ credit card information, prevent unauthorized access, and guarantee compliance with legal and international standards (such as PCI DSS).
General Principles - Credit card information is stored only with the user’s explicit consent. - Stored card data is kept within the infrastructure of a licensed Payment Service Provider (PSP). - Our company does not directly view, store, or host credit card information on its own servers.
Card Storage Process - When a user selects and confirms the “save my card” option during payment, card information is securely transmitted to the payment service provider. - Card details are masked using tokenization and stored only by the payment service provider. - Our company can process future payments using this token but cannot access the full card number, CVV code, or other sensitive card details.
Security Measures - All communication is protected using SSL/TLS encryption. - Payment service providers must be PCI DSS Level 1 certified. - Access to stored cards is available only through the relevant user account after proper authentication.
User Rights - Users may delete their saved cards at any time through their account settings. - No card is stored or charged without the user’s consent. - Recurring or subsequent payments are processed only within the scope of the user’s authorization using their saved card.
Responsibility The secure storage and management of credit card information are the responsibility of the payment service providers. Our company solely utilizes the secure infrastructure provided by these service providers.
Last updated: 02/10/2026

